From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 943D4C02198 for ; Wed, 12 Feb 2025 22:05:16 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id CC0386B0082; Wed, 12 Feb 2025 17:05:15 -0500 (EST) Received: by kanga.kvack.org (Postfix, from userid 40) id C482C6B0083; Wed, 12 Feb 2025 17:05:15 -0500 (EST) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id AE9E96B0085; Wed, 12 Feb 2025 17:05:15 -0500 (EST) X-Delivered-To: linux-mm@kvack.org Received: from relay.hostedemail.com (smtprelay0013.hostedemail.com [216.40.44.13]) by kanga.kvack.org (Postfix) with ESMTP id 835A76B0082 for ; Wed, 12 Feb 2025 17:05:15 -0500 (EST) Received: from smtpin21.hostedemail.com (a10.router.float.18 [10.200.18.1]) by unirelay05.hostedemail.com (Postfix) with ESMTP id 1F1344B6C8 for ; Wed, 12 Feb 2025 22:05:15 +0000 (UTC) X-FDA: 83112674190.21.F15BF09 Received: from dfw.source.kernel.org (dfw.source.kernel.org [139.178.84.217]) by imf12.hostedemail.com (Postfix) with ESMTP id 6BEDF4000C for ; Wed, 12 Feb 2025 22:05:13 +0000 (UTC) Authentication-Results: imf12.hostedemail.com; dkim=pass header.d=kernel.org header.s=k20201202 header.b=qHalxVGC; dmarc=pass (policy=quarantine) header.from=kernel.org; spf=pass (imf12.hostedemail.com: domain of kees@kernel.org designates 139.178.84.217 as permitted sender) smtp.mailfrom=kees@kernel.org ARC-Seal: i=1; s=arc-20220608; d=hostedemail.com; t=1739397913; a=rsa-sha256; cv=none; b=Rx+pK8pV9LeNxB/CXlI8/Mmx5U6lkmZFVyuFHf1axLNAoAhBOp0JByIih5ZlTt2N5Xg/PM jTTeY7VM0kjiEDMeiOBAwHpv7xW4/N6ezMSw3h2Z5eWNSypR9l2M4dkRCETL5qnaMZnfli tLytnoNT43t1k0vf134JBnC8UlN4Fg0= ARC-Authentication-Results: i=1; imf12.hostedemail.com; dkim=pass header.d=kernel.org header.s=k20201202 header.b=qHalxVGC; dmarc=pass (policy=quarantine) header.from=kernel.org; spf=pass (imf12.hostedemail.com: domain of kees@kernel.org designates 139.178.84.217 as permitted sender) smtp.mailfrom=kees@kernel.org ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=hostedemail.com; s=arc-20220608; t=1739397913; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type:content-transfer-encoding: in-reply-to:in-reply-to:references:references:dkim-signature; bh=7lene4kjhXWVzLM3NOlYkrX4lA2aeaiIDPjR1SkUPQk=; b=Tpara90BK7Nze8m4oQAdGsgcg33up7jho2gBmT7YQXzivyrscDHHdiDE9AEjm/H09fK8hD Uqg3ki4X0DITwhfAYdRuX+EN822HT7j9QuVP+OP8Zxa68UL8C409YVqs7Q+epGAxsAtjPv facAWZYS9HAgSGJjbeAbN3hNpwLwl8U= Received: from smtp.kernel.org (transwarp.subspace.kernel.org [100.75.92.58]) by dfw.source.kernel.org (Postfix) with ESMTP id 0D7735C6279; Wed, 12 Feb 2025 22:04:33 +0000 (UTC) Received: by smtp.kernel.org (Postfix) with ESMTPSA id 2BE1EC4CEDF; Wed, 12 Feb 2025 22:05:12 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1739397912; bh=Y884TGbn38v12x+Fv+o7ctbuzGeY4ETaEIEr0q7aULw=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=qHalxVGCbt3PfQou4OQRbr4DwEpl8QOgU7jwY0/FYRBigeT+XLRZzlOWjg4thCeUv K6Tzruh4gnBDgGNndSep6EUcTu70RTNhqQdL+Pm0U+QTX3oHWU5D21zKcCscSQTvSX vBb8LdcOQ2eYbMZLtoNyP1zsOZHPaskdgsqSt3Bb2G39EdOCXNEn8AT9RPCUKTCeys 2pMgMIx3dtCYl32OTbOk45yET5jc4LAd44lQgtaWT8VUgu7Y4G/0JUlm8DAB9T8VBt gSF1DtLQpv3ow4DsQIDF4bZ4CIdfRU4tjAE9D3deFv8rSYay661wuAgmCS0TBOR+N0 NjR+X8sKMLTBA== Date: Wed, 12 Feb 2025 14:05:11 -0800 From: Kees Cook To: Lorenzo Stoakes Cc: jeffxu@chromium.org, akpm@linux-foundation.org, jannh@google.com, torvalds@linux-foundation.org, vbabka@suse.cz, Liam.Howlett@oracle.com, adhemerval.zanella@linaro.org, oleg@redhat.com, avagin@gmail.com, benjamin@sipsolutions.net, linux-kernel@vger.kernel.org, linux-hardening@vger.kernel.org, linux-mm@kvack.org, jorgelo@chromium.org, sroettger@google.com, hch@lst.de, ojeda@kernel.org, thomas.weissschuh@linutronix.de, adobriyan@gmail.com, johannes@sipsolutions.net, pedro.falcato@gmail.com, hca@linux.ibm.com, willy@infradead.org, anna-maria@linutronix.de, mark.rutland@arm.com, linus.walleij@linaro.org, Jason@zx2c4.com, deller@gmx.de, rdunlap@infradead.org, davem@davemloft.net, peterx@redhat.com, f.fainelli@gmail.com, gerg@kernel.org, dave.hansen@linux.intel.com, mingo@kernel.org, ardb@kernel.org, mhocko@suse.com, 42.hyeyoo@gmail.com, peterz@infradead.org, ardb@google.com, enh@google.com, rientjes@google.com, groeck@chromium.org, mpe@ellerman.id.au, aleksandr.mikhalitsyn@canonical.com, mike.rapoport@gmail.com Subject: Re: [RFC PATCH v5 0/7] mseal system mappings Message-ID: <202502121401.B6EF2D4517@keescook> References: <20250212032155.1276806-1-jeffxu@google.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: X-Rspam-User: X-Rspamd-Queue-Id: 6BEDF4000C X-Rspamd-Server: rspam12 X-Stat-Signature: uqxuqjh34nik7nwch4q8311dt754w5gu X-HE-Tag: 1739397913-211627 X-HE-Meta: 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 sigh4jen yTQywDfC1k1t+MGMAIQTHyAP0uUV53IrkeeeIR1ljuakfqOoB+IlleT1noyY4SzSop07NykK4iLRv48ppbeHbx+u6b0OLrdzldy+9Mo4DbXfM7CWWa2DdQXXhZHCpSrgFvG5o7PB+v/iWa3IRTmo43Pz1wOih2HHGHW00T40F1YJDVnAr9WWFJ8UYBupYfb+yTPgrJYIlcQSmDSjSzkh4p2p/hbLJFuIRh97F4Wp+9wJPCqy+uEhFLsY5Xa+WNBKKBzO4WR9+qlzZnbPVcouOprpdegH/4A4EEulkXT0gaIZO5hj/gq2ehULANG6hKuNqOQngDE3fiY6IPdXnWurno3ySL7Q4WU9jIJ5U X-Bogosity: Ham, tests=bogofilter, spamicity=0.004708, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: List-Subscribe: List-Unsubscribe: On Wed, Feb 12, 2025 at 11:24:35AM +0000, Lorenzo Stoakes wrote: > On Wed, Feb 12, 2025 at 03:21:48AM +0000, jeffxu@chromium.org wrote: > > From: Jeff Xu > > > > The commit message in the first patch contains the full description of > > this series. > > Sorry to nit, but it'd be useful to reproduce in the cover letter too! But > this obviously isn't urgent, just be nice when we un-RFC. I advised Jeff against this because I've found it can sometimes cause "thread splitting" in that some people reply to the cover letter, and some people reply to the first patch, etc. I've tended to try to keep cover letters very general, with the bulk of the prose in the first patch. > It'd be nice to update the documentation to have a list of 'known > problematic userland software with sealed VDSO' so we make people aware. I like this idea! Probably in mseal.rst, as the Kconfig help already points there. -Kees -- Kees Cook